2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-19982 | MEDIUM | 5.3 | 1.2% | Dec 26, 2019 | The WordPress plugin, Email Subscribers & Newsletters, before 4.2.3 had a flaw that allowed for unauthenticated option c... |
| CVE-2019-19981 | MEDIUM | 5.4 | 0.6% | Dec 26, 2019 | The WordPress plugin, Email Subscribers & Newsletters, before 4.2.3 had a flaw that allowed for CSRF to be exploited on ... |
| CVE-2019-19980 | MEDIUM | 4.3 | 1.0% | Dec 26, 2019 | The WordPress plugin, Email Subscribers & Newsletters, before 4.2.3 had a privilege bypass flaw that allowed authenticat... |
| CVE-2019-19966 | MEDIUM | 4.6 | 0.6% | Dec 25, 2019 | In the Linux kernel before 5.1.6, there is a use-after-free in cpia2_exit() in drivers/media/usb/cpia2/cpia2_v4l.c that ... |
| CVE-2019-19965 | MEDIUM | 4.7 | 0.7% | Dec 25, 2019 | In the Linux kernel through 5.4.6, there is a NULL pointer dereference in drivers/scsi/libsas/sas_discover.c because of ... |
| CVE-2019-19963 | MEDIUM | 5.3 | 1.0% | Dec 25, 2019 | An issue was discovered in wolfSSL before 4.3.0 in a non-default configuration where DSA is enabled. DSA signing uses th... |
| CVE-2019-19960 | MEDIUM | 5.3 | 1.0% | Dec 25, 2019 | In wolfSSL before 4.3.0, wc_ecc_mulmod_ex does not properly resist side-channel attacks. |
| CVE-2019-19958 | MEDIUM | 6.5 | 0.9% | Dec 24, 2019 | In libIEC61850 1.4.0, StringUtils_createStringFromBuffer in common/string_utilities.c has an integer signedness issue th... |
| CVE-2019-19957 | MEDIUM | 6.5 | 0.9% | Dec 24, 2019 | In libIEC61850 1.4.0, getNumberOfElements in mms/iso_mms/server/mms_access_result.c has an out-of-bounds read vulnerabil... |
| CVE-2019-19924 | MEDIUM | 5.3 | 7.9% | Dec 24, 2019 | SQLite 3.30.1 mishandles certain parser-tree rewriting, related to expr.c, vdbeaux.c, and window.c. This is caused by in... |
| CVE-2019-18249 | MEDIUM | 6.1 | 0.8% | Dec 24, 2019 | Reliable Controls MACH-ProWebCom/Sys, all versions prior to 2.15 (Firmware versions prior to 8.26.4), may allow attacker... |
| CVE-2019-19947 | MEDIUM | 4.6 | 0.5% | Dec 24, 2019 | In the Linux kernel through 5.4.6, there are information leaks of uninitialized memory to a USB device in the drivers/ne... |
| CVE-2019-6147 | MEDIUM | 5.9 | 0.7% | Dec 23, 2019 | Forcepoint NGFW Security Management Center (SMC) versions lower than 6.5.12 or 6.7.1 have a rare issue that in specific ... |
| CVE-2019-5108 | MEDIUM | 6.5 | 10.1% | Dec 23, 2019 | An exploitable denial-of-service vulnerability exists in the Linux kernel prior to mainline 5.3. An attacker could explo... |
| CVE-2019-3430 | MEDIUM | 4.9 | 0.9% | Dec 23, 2019 | All versions up to V4.01.01.02 of ZTE ZXCLOUD GoldenData VAP product have an information disclosure vulnerability. Attac... |
| CVE-2019-3429 | MEDIUM | 5.3 | 0.9% | Dec 23, 2019 | All versions up to V4.01.01.02 of ZTE ZXCLOUD GoldenData VAP product have a file reading vulnerability. Attackers could ... |
| CVE-2019-19944 | MEDIUM | 6.5 | 0.9% | Dec 23, 2019 | In libIEC61850 1.4.0, BerDecoder_decodeUint32 in mms/asn1/ber_decode.c has an out-of-bounds read, related to intLen and ... |
| CVE-2019-19151 | MEDIUM | 5.5 | 0.3% | Dec 23, 2019 | On BIG-IP versions 15.0.0-15.1.0, 14.0.0-14.1.2.3, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, BIG-IQ versions ... |
| CVE-2019-6688 | MEDIUM | 4.3 | 0.7% | Dec 23, 2019 | On BIG-IP versions 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5 an... |
| CVE-2019-6686 | MEDIUM | 5.3 | 1.0% | Dec 23, 2019 | On BIG-IP versions 15.0.0-15.0.1.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, the Traffic Management Microkernel (T... |
| CVE-2019-5267 | MEDIUM | 5.5 | 0.2% | Dec 23, 2019 | Huawei OceanStor SNS3096 V100R002C01 have an information disclosure vulnerability. Attackers with low privilege can expl... |
| CVE-2019-19150 | MEDIUM | 4.9 | 0.8% | Dec 23, 2019 | On versions 15.0.0-15.0.1.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, the BIG-... |
| CVE-2019-6678 | MEDIUM | 5.3 | 1.0% | Dec 23, 2019 | On BIG-IP versions 15.0.0-15.0.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, and 13.1.0-13.1.3.1, the TMM process may restart when ... |
| CVE-2019-19337 | MEDIUM | 6.5 | 1.3% | Dec 23, 2019 | A flaw was found in Red Hat Ceph Storage version 3 in the way the Ceph RADOS Gateway daemon handles S3 requests. An auth... |
| CVE-2019-18391 | MEDIUM | 5.5 | 0.4% | Dec 23, 2019 | A heap-based buffer overflow in the vrend_renderer_transfer_write_iov function in vrend_renderer.c in virglrenderer thro... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now